Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2021-12-08 CVE-2021-43067 Information Exposure vulnerability in Fortinet Fortiauthenticator
A exposure of sensitive information to an unauthorized actor in Fortinet FortiAuthenticator version 6.4.0, version 6.3.2 and below, version 6.2.1 and below, version 6.1.2 and below, version 6.0.7 to 6.0.1 allows attacker to duplicate a target LDAP user 2 factors authentication token via crafted HTTP requests.
network
low complexity
fortinet CWE-200
6.5
2021-12-07 CVE-2021-43963 Information Exposure vulnerability in Couchbase Sync Gateway
An issue was discovered in Couchbase Sync Gateway 2.7.0 through 2.8.2.
network
low complexity
couchbase CWE-200
8.1
2021-12-07 CVE-2021-37067 Information Exposure vulnerability in Huawei Harmonyos
There is a Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Confidentiality impacted.
network
low complexity
huawei CWE-200
7.5
2021-12-02 CVE-2020-27414 Information Exposure vulnerability in Mahadiscom Mahavitaran 7.50
Mahavitaran android application 7.50 and prior transmit sensitive information in URL parameters.
network
high complexity
mahadiscom CWE-200
5.9
2021-11-30 CVE-2021-38999 Information Exposure vulnerability in IBM MQ Appliance 9.2.0.0
IBM MQ Appliance could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trace.
local
low complexity
ibm CWE-200
5.5
2021-11-30 CVE-2021-39000 Information Exposure vulnerability in IBM MQ Appliance 9.2.0.0
IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local attacker to obtain sensitive information by inclusion of sensitive data within diagnostics.
local
low complexity
ibm CWE-200
5.5
2021-11-23 CVE-2021-37010 Information Exposure vulnerability in Huawei Harmonyos 2.0
There is a Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.
network
low complexity
huawei CWE-200
7.5
2021-11-22 CVE-2019-5640 Information Exposure vulnerability in Rapid7 Nexpose
Rapid7 Nexpose versions prior to 6.6.114 suffer from an information exposure issue whereby, when the user's session has ended due to inactivity, an attacker can use the inspect element browser feature to remove the login panel and view the details available in the last webpage visited by previous user
network
low complexity
rapid7 CWE-200
5.3
2021-11-17 CVE-2021-32600 Information Exposure vulnerability in Fortinet Fortios
An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS CLI 7.0.0, 6.4.0 through 6.4.6, 6.2.0 through 6.2.9, 6.0.x and 5.6.x may allow a local and authenticated user assigned to a specific VDOM to retrieve other VDOMs information such as the admin account list and the network interface list.
local
low complexity
fortinet CWE-200
3.8
2021-11-15 CVE-2021-41271 Information Exposure vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse CWE-200
5.3